A vulnerability was found in Privoxy which was fixed in process_encrypted_request_headers() by freeing header memory when failing to get the request destination.
A security issue has been found in Privoxy before version 3033 process_encrypted_request_headers() did not free header memory when failing to get the request destination ...
Announcing Privoxy 3033 stable
--------------------------------------------------------------------
Privoxy 3033 fixes an XSS issue, multiple DoS issues and a
couple of other bugs The issues also affect earlier Privoxy releases
Privoxy 3033 also comes with a couple of general improvements and
new features
-------------------------------- ...